antipwny: host based IDS for detecting meterpreter session
antipwny
Authors: Rohan Vazarkar, David Bitner
A host-based IDS/IPS written in C#, targeted at Metasploit Payloads.
Current Features
- Scans Registry for Meterpreter Persistence/MetSvc
- Active Memory Scans to detect Meterpreter
- IDS/IPS Mode
- View outbound connections in compromised processes
- Self-Detection for Migrated Meterpreter
Detected Payloads:
- Meterpreter
- Java Meterpreter
- Reverse Shell
Download
git clone https://github.com/rvazarkar/antipwny.git