File tree Expand file tree Collapse file tree 1 file changed +1
-1
lines changed
Expand file tree Collapse file tree 1 file changed +1
-1
lines changed Original file line number Diff line number Diff line change @@ -1471,7 +1471,7 @@ there is a tool [AVSignSeek](https://github.com/hegusung/AVSignSeek) that can he
14711471
14721472
14731473- Scripts used in this article (** POCs** ):<br />
1474- [ 1] [ undefined-vars.bat] ( https://pastebin.com/MV0uxDaf ) [ 2] [ certutil-dropper.bat] ( https://pastebin.com/hyBJHAgx ) [ 3] [ demo.bat] ( https://pastebin.com/8KL6rBTF ) [ 4] [ AMSI-bypass.bat] ( https://pastebin.com/H2kjLCin ) [ 5] [ Hello.ps1] ( https://pastebin.com/ELByB5y7 ) < br /> [ 6] [ Unicorn.ps1] ( https://pastebin.com/y9qJdGJf ) [ 7] [ psh-dropper.ps1] ( https://pastebin.com/MJ2f20Zs ) [ 8] [ BitsTransfer.ps1] ( https://pastebin.com/keaHme3F ) [ 9] [ Invoke-WebRequest.ps1] ( https://pastebin.com/9VRtFZ1Y ) <br />[ 10] [ AMSI-Downgrade.ps1] ( https://pastebin.com/qkkq5bZy ) [ 11] [ AMSI-Reflection.ps1] ( https://pastebin.com/THJQvHnU ) [ 12] [ Bypass-AMSI.ps1] ( https://pastebin.com/A2C0TSNs ) [ 13] [ AgentK.bat] ( https://pastebin.com/K2w5dbuQ ) [ 14] [ sandbox-detection.ps1] ( https://pastebin.com/qhgDvcrF ) <br />
1474+ [ 1] [ undefined-vars.bat] ( https://pastebin.com/MV0uxDaf ) [ 2] [ certutil-dropper.bat] ( https://pastebin.com/hyBJHAgx ) [ 3] [ demo.bat] ( https://pastebin.com/8KL6rBTF ) [ 4] [ AMSI-bypass.bat] ( https://pastebin.com/H2kjLCin ) [ 5] [ Hello.ps1] ( https://pastebin.com/ELByB5y7 ) [ 6] [ Unicorn.ps1] ( https://pastebin.com/y9qJdGJf ) < br /> [ 7] [ psh-dropper.ps1] ( https://pastebin.com/MJ2f20Zs ) [ 8] [ BitsTransfer.ps1] ( https://pastebin.com/keaHme3F ) [ 9] [ Invoke-WebRequest.ps1] ( https://pastebin.com/9VRtFZ1Y ) <br />[ 10] [ AMSI-Downgrade.ps1] ( https://pastebin.com/qkkq5bZy ) [ 11] [ AMSI-Reflection.ps1] ( https://pastebin.com/THJQvHnU ) [ 12] [ Bypass-AMSI.ps1] ( https://pastebin.com/A2C0TSNs ) [ 13] [ AgentK.bat] ( https://pastebin.com/K2w5dbuQ ) [ 14] [ sandbox-detection.ps1] ( https://pastebin.com/qhgDvcrF ) <br />
14751475
14761476 The above scripts are meant for article readers to quick test concepts and obfuscation methods
14771477 there is no guaranties that they will bypass AMSI detection [demo scripts] so.. if you are a
You can’t perform that action at this time.
0 commit comments