
w11_shadow_copies
Manage Shadows Copies via the VSS API using C#, C++, Crystal or Python. Working on Windows 11
data-exfiltrationexploitationlateral-movement+5
84

Manage Shadows Copies via the VSS API using C#, C++, Crystal or Python. Working on Windows 11


This tool can be used during internal penetration testing to dump Windows credentials from an already-compromised host. It allows one to dump SYSTEM,…

C# utility that uses WMI to run "cmd.exe /c netstat -n", save the output to a file, then use SMB to read and delete the file remotely