Lateral Movement

Persistence

– [activator]::CreateInstance([type]::GetTypeFromCLSID($CLSID)) | Get-Member

COM Hijacking for Lateral Movement

https://www.youtube.com/watch?v=dfMuzAZRGm4

Building a COM Server for Initial Execution

Read this whole thing carefully. Uses COM to allow dll execution through vbscript/jscript, possible alternative to DotNetToJScript

https://www.youtube.com/watch?v=BIJ2L_rM9Gc