w0rk3r's Windows Hacking Library
1.66K subscribers
10 photos
577 links
Manual job, I'm not a bot ;)

@BlueTeamLibrary
@W0rk3r
Download Telegram
Bypasses Microsoft's Anti-Malware Scan Interface for a PowerShell session process started through the "Start-Job" cmdlet, the PID of which is accessed using "Enter-PSHostProcess"

https://github.com/securemode/Bypass-AMSI9000

@WindowsHackingLibrary