Tomiwa-Ot / py-amsiLinks
Scan strings or files for malware using the Windows Antimalware Scan Interface
☆30Updated 2 years ago
Alternatives and similar repositories for py-amsi
Users that are interested in py-amsi are comparing it to the libraries listed below
Sorting:
- ECC Public Key Cryptography☆38Updated 2 years ago
- Enumerate SSN (System Service Numbers or Syscall ID) and syscall instruction address in ntdll module by parsing the PEB of the current pr…☆21Updated last year
- Docker container for running CobaltStrike 4.10☆37Updated last year
- ☆35Updated 2 years ago
- exfiltration/infiltration toolkit☆23Updated last year
- ☆27Updated 2 years ago
- ShadowForge Command & Control - Harnessing the power of Zoom's API, control a compromised Windows Machine from your Zoom Chats.☆50Updated 2 years ago
- A lightweight HTTP/HTTPS reverse proxy for efficient, policy-based traffic filtering and redirection.☆45Updated 2 years ago
- ☆59Updated last year
- A remote unauthenticated DOS POC exploit that targets the authentication implementation of Havoc.☆38Updated 2 years ago
- A C2 framework for all your God Complex. A fully functional and integrated Botnet for remote command execution through user friendly UI.☆45Updated 2 years ago
- Identify binaries with Authenticode digital signatures signed to an internal CA/domain☆40Updated last year
- freeBokuLoader fork which targets and frees Metsrv's initial reflective DLL package☆35Updated 2 years ago
- Parent Process ID Spoofing, coded in CGo.☆23Updated 7 months ago
- DLL Unlinking from InLoadOrderModuleList, InMemoryOrderModuleList, InInitializationOrderModuleList, and LdrpHashTable☆58Updated last year
- A C# Tool to gather information about email breaches☆15Updated last year
- RegStrike is a .reg payload generator☆58Updated 2 years ago
- PfSense Stored XSS lead to Arbitrary Code Execution exploit☆49Updated 10 months ago
- Extension functionality for the NightHawk operator client☆26Updated 2 years ago
- EvtPsst☆55Updated 2 years ago
- Demonstration of Early Bird APC Injection - MITRE ID T1055.004☆35Updated 2 years ago
- ☆55Updated 11 months ago
- MacroExploit use in excel sheet☆20Updated 2 years ago
- Make an Linux Kernel rootkit visible again.☆61Updated 9 months ago
- C++ Code to perform a MiniDump of lsass.exe☆36Updated 2 years ago
- Python3 tool to perform password spraying using RDP☆16Updated 2 years ago
- .NET profiler DLL loading can be abused to make a legit .NET application load a malicious DLL using environment variables. This exploit i…☆45Updated last year
- A proof-of-concept Command & Control framework that utilizes the powerful AsyncSSH Python library which provides an asynchronous client a…☆75Updated 2 years ago
- Experience the power of a PHP webshell designed to overcome the limitations of blacklisted system/exec functions.☆25Updated last year
- Windows Administrator level Implant.☆50Updated last year