Meterpreter Payload Detection: detecting Meterpreter in memory
Meterpreter Signature Authors: Rohan Vazarkar, David Bitner
Note: some API programming and Meterpreter Signature Created by these guys Rohan Vazarkar, David Bitner
Note: IPS Mode required RunAs Administrators
if you getting an error, use command with one argument
syntax: Meterpreter_Payload_Detection.exe IPS
syntax: Meterpreter_Payload_Detection.exe IDS
syntax: Meterpreter_Payload_Detection.exe Blobblob