mirror of
https://github.com/LOLBAS-Project/LOLBAS
synced 2025-01-26 05:22:20 +01:00
ecbc2f817f
Used by redteams for defense evasion to disable drivers used by agents like sysmon https://www.darkoperator.com/blog/2018/10/5/operating-offensively-against-sysmon https://github.com/oddcod3/Phantom-Evasion/blob/master/Modules/post-exploitation/Postex_CMD_UnloadSysmonDriver_windows.py |
||
---|---|---|
.. | ||
LOLUtilz | ||
OSBinaries | ||
OSLibraries | ||
OSScripts | ||
OtherMSBinaries |