Hi there,
Thank you for your time with this! Its really good!! The exe and powershell doesnt get detected by Windows Defender and Symantec Endpoint. Are you doing any syscalls against the APIs?
Also, Would love a download feature to data exfiltrate off the c2! That would be handy.