< Back

Get-EmpireModule

Sat Jan 18, 2020 8:47 pm

NAME Get-EmpireModule



SYNOPSIS

Get information on Empire modules.





SYNTAX

Get-EmpireModule [-Id] <Int32> [-NoSSLCheck] [-ModuleName <String>] [-Category <String>] [<CommonParameters>]



Get-EmpireModule [-Token] <String> [-ComputerName] <String> [[-Port] <Int32>] [-NoSSLCheck] [-ModuleName <String>]

[-Category <String>] [<CommonParameters>]





DESCRIPTION

Get information on Empire modules.





PARAMETERS

-Id <Int32>

Empire session Id of the session to use.



Required? true

Position? 1

Default value 0

Accept pipeline input? true (ByPropertyName)

Accept wildcard characters? false



-Token <String>

Empire API token to use to execute the action.



Required? true

Position? 1

Default value

Accept pipeline input? true (ByPropertyName)

Accept wildcard characters? false



-ComputerName <String>

IP Address or FQDN of remote Empire server.



Required? true

Position? 2

Default value

Accept pipeline input? true (ByPropertyName)

Accept wildcard characters? false



-Port <Int32>

Port number to use in the connection to the remote Empire server.



Required? false

Position? 3

Default value 1337

Accept pipeline input? true (ByPropertyName)

Accept wildcard characters? false



-NoSSLCheck [<SwitchParameter>]

Do not check if the TLS/SSL certificate of the Empire is valid.



Required? false

Position? named

Default value False

Accept pipeline input? false

Accept wildcard characters? false



-ModuleName <String>

Specific name of module to get information on.



Required? false

Position? named

Default value

Accept pipeline input? false

Accept wildcard characters? false



-Category <String>

Module category to enumerate.



Required? false

Position? named

Default value

Accept pipeline input? false

Accept wildcard characters? false



<CommonParameters>

This cmdlet supports the common parameters: Verbose, Debug,

ErrorAction, ErrorVariable, WarningAction, WarningVariable,

OutBuffer, PipelineVariable, and OutVariable. For more information, see

about_CommonParameters (https:/go.microsoft.com/fwlink/?LinkID=113216).



INPUTS



OUTPUTS



NOTES





Licensed under BSD 3-Clause license



-------------------------- EXAMPLE 1 --------------------------



C:\\PS>Get-EmpireModule -Id 0 -Category Code_Execution



Get all modules under the code execution category.









-------------------------- EXAMPLE 2 --------------------------



C:\\PS>Get-EmpireModule -Id 0 -Category Code_Execution | Select-Object -Property name



Get all modules names only under the code execution category.









-------------------------- EXAMPLE 3 --------------------------



C:\\PS>Get-EmpireModule -Id 0



Get all modules available.









-------------------------- EXAMPLE 4 --------------------------



C:\\PS>Get-EmpireModule -Id 0 -ModuleName code_execution/invoke_shellcode



Get specific information on the module











RELATED LINKS